Authentication Flaw in App Store Connect by Apple
CVE-2025-31267

Currently unrated

Key Information:

Vendor

Apple

Vendor
CVE Published:
10 July 2025

What is CVE-2025-31267?

An authentication issue has been identified in App Store Connect, where an attacker with physical access to an unlocked device can potentially view sensitive user information. The vulnerability has been addressed with improved state management in the latest version of the application.

Affected Version(s)

App Store Connect < 3.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-31267 : Authentication Flaw in App Store Connect by Apple